Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 570 of 579|Showing 28451-28500 of 28928
5

555photography

555photography.com

0
MediaN/asmallHIGH

555photography is a small professional photography business specializing in wedding, family, engagement, and event photography. The business leverages the SmugMug platform to showcase its portfolio and manage client galleries, positioning itself as a niche service provider in the media sector. The website content is relevant and well-structured, targeting individuals and families seeking professional photography services. The business model relies on online presence and client engagement through SmugMug's infrastructure. Technically, the website is hosted on SmugMug's infrastructure using nginx and Amazon CloudFront CDN, with modern JavaScript frameworks and responsive design ensuring good mobile optimization and user experience. However, performance metrics are limited, and some technical debt is evident in the use of older YUI libraries alongside modern modules. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability impacting user trust and data protection. While some security headers are present, the absence of HTTPS and other advanced security features significantly lowers the security posture. Privacy policies and terms of service are available on the SmugMug domain, indicating compliance with GDPR and cookie consent mechanisms, but no explicit security or incident response policies are found. Overall, the website presents a moderate risk profile primarily due to missing HTTPS and limited direct business contact information. Strategic improvements in SSL implementation, security policy publication, and direct contact channels would enhance trust and compliance.

50
-
-
50
-
70
100
photographyweddingfamilyprofessionalengagement+1 more
nginxSmugMug platformCloudFront CDNJavaScript ES6 modules+5
2025-06-15T21:49:48.353Z
granitic.eu favicon

granITIC

granitic.eu

0
TechnologyN/asmallHIGH

granITIC is a small IT consulting and software development company specializing in software architecture, Oracle and Java development, and medical office software solutions. The company targets sectors such as healthcare, production, industry, trade, aeronautical, and lottery. The website presents basic information about the business and its services but lacks detailed contact information and advanced content features. Technically, the website is hosted on an Apache server running Ubuntu, with Google Analytics integrated for visitor tracking. However, the site lacks HTTPS support, has no valid SSL certificate, and does not implement modern security headers or privacy compliance mechanisms. Performance data is unavailable, but the site appears minimal and slow, with poor mobile optimization and accessibility. From a security perspective, the absence of HTTPS and security headers represents a critical vulnerability, exposing users to potential data interception and undermining trust. The lack of privacy and cookie policies further indicates non-compliance with GDPR and related regulations. DNS and SPF records are properly configured, reducing email spoofing risks. Overall, the website's risk profile is elevated due to missing fundamental security controls and privacy compliance. Strategic improvements in SSL implementation, security headers, and privacy policies are essential to enhance trustworthiness and regulatory adherence.

15
-
-
50
-
85
40
itconsultingsoftwaredevelopmentoraclejavamedicalsoftware+2 more
Apache 2.4.29UbuntuGoogle AnalyticsJavaScript
2025-06-15T21:49:25.423Z
spenglerfox.com favicon

SpenglerFox

spenglerfox.com

0
OtherN/alargeHIGH

SpenglerFox is a globally recognized executive search and talent solutions provider, ranked in the top 40 worldwide. The company operates through a large network of over 380 consultants across 76 offices in 47 countries, offering services including executive search, leadership advisory, interim management, recruitment process outsourcing, and board solutions. Their business model focuses on delivering agile talent solutions to corporate clients seeking leadership and executive talent globally. The website content is professionally crafted, with detailed service descriptions and team profiles, reflecting a mature and established business. Technically, the website is built on WordPress, leveraging common plugins such as Yoast SEO and includes integrations with analytics and tracking tools like Microsoft Clarity, Google Tag Manager, and LinkedIn Insight. The site uses Apache hosting with DNS managed via AWS Route53. However, the website lacks HTTPS encryption, which is a critical security shortfall. Performance is moderate to slow, with good mobile optimization and basic accessibility features. From a security perspective, the absence of a valid SSL certificate and HTTPS is a major vulnerability, exposing users to potential data interception risks. The site also lacks important security headers and cookie consent mechanisms, which are important for GDPR compliance and user privacy. No incident response or security policy pages are found, and no certifications are displayed. The domain registration is consistent and transparent, with a mature domain age of 22 years and strong domain protection, supporting the legitimacy of the business. Overall, while the business and content quality are high, the security posture is weak due to missing HTTPS and security headers. Strategic improvements in SSL deployment, security headers, and privacy compliance are recommended to enhance trust and protect user data.

20
18
5
50
-
85
100
executivesearchtalentsolutionsleadershipadvisoryrecruitmentglobal+1 more
ApacheWordPressYoast SEOjQuery+3
2025-06-15T21:49:14.473Z
I

Index of /

bestbrandsstores.ca

0
OtherN/asmallCRITICAL

The website bestbrandsstores.ca currently hosts a minimal directory listing with no substantive content, metadata, or business information. The site appears to be a WordPress installation with exposed core files and configuration accessible publicly, indicating poor security hygiene. The domain is registered and has valid DNS records including MX and SPF, but lacks a valid SSL certificate, resulting in unencrypted HTTP traffic. No privacy, cookie, or terms of service policies are present, and no contact or business details are provided on the site. Overall, the site lacks professionalism and trust indicators, which negatively impacts its credibility and user trust. From a technical perspective, the site is hosted on a VPS provider (hostpapavps.net) and uses WordPress CMS but is poorly maintained. Performance is slow despite minimal content, and there is no evidence of modern web technologies or SEO optimization. Security posture is weak due to missing HTTPS, lack of security headers, and exposed sensitive files. The domain's WHOIS data shows consistent registration but no privacy protection or detailed registrant information. Security risks include the absence of HTTPS, publicly accessible wp-config.php file, and no security policies or incident response contacts. These issues expose the site to potential data interception, unauthorized access, and reputational damage. The lack of privacy and cookie policies also indicates non-compliance with GDPR and other privacy regulations. Strategically, the site requires urgent remediation to secure its infrastructure, implement HTTPS, restrict access to sensitive files, and publish essential compliance policies. Without these improvements, the site risks being flagged as untrustworthy by users and search engines, limiting its business potential and exposing it to cyber threats.

15
15
-
50
-
80
20
2025-06-15T21:49:04.453Z